Drag steps to the numbered slots on the right, or tap a step then tap a slot.
CCSP Practice Question: Drag and drop the steps for managing identity and…
Drag and drop the steps for managing identity and access in a multi-cloud environment using a centralized identity provider (IdP) into the correct order.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
Integrate the centralized IdP → Create groups and roles → Configure attribute/role mapping → Assign users with MFA enforcement → Audit and review access
First integrate IdP, then create groups/roles, configure mapping, assign users with MFA, and audit.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Integrate the centralized IdP → Create groups and roles → Configure attribute/role mapping → Assign users with MFA enforcement → Audit and review access
Why this is correct
This is the correct order because the IdP must be integrated first to establish the identity source, then groups/roles are created for authorization, mapping aligns attributes, users are assigned with MFA, and finally auditing ensures compliance.
- ✗
Create groups and roles → Integrate the centralized IdP → Configure attribute/role mapping → Assign users with MFA → Audit
Why it's wrong here
This is incorrect because groups and roles should be defined after the IdP is integrated, as they rely on the identity attributes provided by the IdP.
- ✗
Integrate the centralized IdP → Configure attribute/role mapping → Create groups and roles → Assign users with MFA → Audit
Why it's wrong here
This is incorrect because mapping requires knowledge of the groups and roles that will be used, so groups and roles must be created before mapping.
- ✗
Integrate the centralized IdP → Create groups and roles → Assign users with MFA → Configure attribute/role mapping → Audit
Why it's wrong here
This is incorrect because users should not be assigned until the mapping is configured to ensure correct attribute and role alignment.
Go deeper
Related to this question
About these practice questions
One of 964 original CCSP practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This CCSP practice question is part of Courseiva's free ISC2 certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CCSP exam.